|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 21, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252301 | 4.3 | 警告 | One Click Orgs | - | One Click Orgs におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4552 | 2011-12-7 16:18 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
| 252302 | 7.5 | 危険 | osCommerce | - | osCommerce における複数のディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4543 | 2011-12-6 16:33 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
| 252303 | 7.5 | 危険 | Zabbix | - | Zabbix の popup.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4674 | 2011-12-6 16:27 | 2011-11-24 | Show | GitHub Exploit DB Packet Storm |
| 252304 | 7.5 | 危険 | Automattic Inc. | - | WordPress 用 Jetpack プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4673 | 2011-12-6 16:26 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 252305 | 7.5 | 危険 | Valid | - | Valid tiny-erp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4672 | 2011-12-6 16:25 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 252306 | 7.5 | 危険 | AdRotate Plugin | - | WordPress 用 AdRotate プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4671 | 2011-12-6 16:24 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 252307 | 10 | 危険 | Iron Mountain | - | Iron Mountain Connected Backup の Agent service における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-2397 | 2011-12-6 16:22 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
| 252308 | 6.4 | 警告 | Widelands | - | Widelands の io/filesystem/filesystem.cc におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-1932 | 2011-12-6 16:22 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
| 252309 | 4.3 | 警告 | Etomite Project | - | Etomite におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4264 | 2011-12-6 12:01 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
| 252310 | 7.5 | 危険 | jonkemp | - | WordPress 用 WordPress Users プラグインの wp-users.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4669 | 2011-12-5 16:08 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254621 | 9.8 |
CRITICAL
Network |
quibids_clone_project | quibids_clone | FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter. |
CWE-89
SQL Injection |
CVE-2017-17581 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254622 | 9.8 |
CRITICAL
Network |
linkedin_clone_project | linkedin_clone | FS Linkedin Clone 1.0 has SQL Injection via the group.php grid parameter, profile.php fid parameter, or company_details.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17580 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254623 | 9.8 |
CRITICAL
Network |
freelancer_clone_project | freelancer_clone | FS Freelancer Clone 1.0 has SQL Injection via the profile.php u parameter. |
CWE-89
SQL Injection |
CVE-2017-17579 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254624 | 9.8 |
CRITICAL
Network |
crowdfunding_script_project | crowdfunding_script | FS Crowdfunding Script 1.0 has SQL Injection via the latest_news_details.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17578 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254625 | 9.8 |
CRITICAL
Network |
trademe_clone_project | trademe_clone | FS Trademe Clone 1.0 has SQL Injection via the search_item.php search parameter or the general_item_details.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17577 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254626 | 9.8 |
CRITICAL
Network |
gigs_script_project | gigs_script | FS Gigs Script 1.0 has SQL Injection via the browse-category.php cat parameter, browse-scategory.php sc parameter, or service-provider.php ser parameter. |
CWE-89
SQL Injection |
CVE-2017-17576 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254627 | 9.8 |
CRITICAL
Network |
groupon_clone_project | groupon_clone | FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17575 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254628 | 9.8 |
CRITICAL
Network |
care_clone_project | care_clone | FS Care Clone 1.0 has SQL Injection via the searchJob.php jobType or jobFrequency parameter. |
CWE-89
SQL Injection |
CVE-2017-17574 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254629 | 9.8 |
CRITICAL
Network |
fortunescripts | ebay_clone | FS Ebay Clone 1.0 has SQL Injection via the product.php id parameter, or the search.php category_id or sub_category_id parameter. |
CWE-89
SQL Injection |
CVE-2017-17573 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254630 | 9.8 |
CRITICAL
Network |
amazon_clone_project | amazon_clone | FS Amazon Clone 1.0 has SQL Injection via the PATH_INFO to /VerAyari. |
CWE-89
SQL Injection |
CVE-2017-17572 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |